- CheckMates
- :
- Products
- :
- Quantum
- :
- Security Gateways
- :
- Re: Certificate based VPN with Sonicwall ICA error
- Subscribe to RSS Feed
- Mark Topic as New
- Mark Topic as Read
- Float this Topic for Current User
- Bookmark
- Subscribe
- Mute
- Printer Friendly Page
Are you a member of CheckMates?
×- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Certificate based VPN with Sonicwall ICA error
Hello Team
I had a requirement of establishing the Checkpoint Gateway with the Sonic wall appliance with dynamic IP.
Check point supports only certificate based authentication if we have dynamic IP.
While trying to get the sonicwall CSR signed from the ICA tool the certificate is not getting validated in Sonicwall while uploading to sonicwall.
Can anyone let me know if you had a chance to get the similar setup working in your environment.
Regards
Dburaj
Accepted Solutions
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Either way, more information is needed from the Sonicwall side to understand what, if anything, needs to be done on the Check Point end.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Sounds like an issue on the Sonicwall side.
What's the precise error?
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
I am getting the attached error
The certificate that is signed from the ICA tool is put into the sonicwall and it shows not valid
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Is the Sonicwall configured to accept the ICA as a valid Certificate Authority?
In any case, this sounds like a Sonicwall issue.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Yes the ICA internal certificate is uploaded to Sonicwall as the trusted certificate.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Either way, more information is needed from the Sonicwall side to understand what, if anything, needs to be done on the Check Point end.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
The issue is fixed by the SonicWall. The sonic wall was unable to verify the certificate info.
SonicWall engineering team had developed a patch to fix the issue.
The upcoming releases in SonicWall will have the patch included.
